nerdexam
Microsoft

SC-300 · Question #448

You have a Microsoft 365 tenant. All users have mobile phones and Windows 11 laptops. The users frequently work from remote locations that do not have Wi-Fi access or mobile phone connectivity…

The correct answer is B. Windows Hello for Business. a verification code from the Microsoft Authenticator app Windows Hello for Business a notification through the Microsoft Authenticator app an app password security questions Windows Hello for Business In Windows 10, Windows Hello for Business replaces passwords with strong…

Submitted by neha2k· Mar 6, 2026Implement authentication and access management

Question

You have a Microsoft 365 tenant. All users have mobile phones and Windows 11 laptops. The users frequently work from remote locations that do not have Wi-Fi access or mobile phone connectivity. While working from the remote locations, the users connect their laptop to a wired network that has internet access. You plan to implement multi-factor authentication (MFA). Which MFA authentication method can the users use from the remote location?

Options

  • Aemail
  • BWindows Hello for Business
  • Cvoice
  • Dan app password

How the community answered

(34 responses)
  • A
    3% (1)
  • B
    85% (29)
  • C
    9% (3)
  • D
    3% (1)

Explanation

  • a verification code from the Microsoft Authenticator app * Windows Hello for Business * a notification through the Microsoft Authenticator app * an app password * security questions * Windows Hello for Business In Windows 10, Windows Hello for Business replaces passwords with strong two-factor authentication on PCs and mobile devices. This authentication consists of a new type of user credential that is tied to a device and uses a biometric or PIN. After an initial two-step verification of the user during enrollment, Windows Hello is set up on the user'’ device and Windows asks the user to set a gesture, which can be a biometric, such as a fingerprint, or a PIN. The user provides the gesture to verify their identity. Windows then uses Windows Hello to authenticate users. * a verification code from the Microsoft Authenticator app The Authenticator app can be used as a software token to generate an OATH verification code. After entering your username and password, you enter the code provided by the Authenticator app into the sign-in interface. * a notification through the Microsoft Authenticator app A notification through the Microsoft Authenticator app requires connectivity to send the verification code to the device requesting the logon * an app password An app password can be used to open an application but it cannot be used to sign in to a An email requires network connectivity. Password reset authentication only. You'll need to choose a different method for two-’actor * security questions Security questions are not used as an authentication method but can be used during the self- service password reset (SSPR) process. SMS requires a mobile phone A voice call requires mobile connectivity. https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-authentication- https://docs.microsoft.com/en-us/windows/security/identity-protection/hello-for-business/hello- https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-authentication- authenticator-app#verification-code-from-mobile-app https://docs.microsoft.com/en-us/azure/active-directory/authentication/concept-authentication-

Topics

#MFA methods#Windows Hello for Business#offline authentication#passwordless

Community Discussion

No community discussion yet for this question.

Full SC-300 Practice